Chapter
Chapter 1: Installation and Upgrading
Current Branch, also known as Semi-Annual Channel (Targeted)
Current Branch for Business, also known as Semi-Annual Channel
Support timeline before 1709
Support timeline since 1709
The Long-Term Servicing Branch
LTSB problem silicon support - potential risk with Zen, Cannonlake, and newer CPUs
Limitations and blocker of the in-place upgrade
Changing from BIOS/legacy mode to UEFI mode
Changing from Windows 32-bit/x86 to 64-bit/x64
Changing the base OS language
Changing primary disk partitioning
Using the Windows To Go or boot from VHD features
Image creation process (sysprep after upgrade not supported)
Certain third-party disk encryption products
Changing too many apps (bulk application swap)
Traditional wipe and load
An alternative: provisioning
Improvements in deployment since Windows 10 1511
Windows 10 1607, also known as Anniversary Update
Windows 10 1703/1709, also known as Fall Creators Update
Tips and tricks for smooth in-place upgrade from 7, 8.1, or 10 to 10
Integrating cumulative updates into install sources
Looking at Setupact.log and Setupapi.dev.log
Using Windows Upgrade Analytics aka Windows Upgrade Readiness
Selecting the deployment tools
Chapter 2: Configuration and Customization
Introducing Windows as a service
Internet Explorer 11 Enterprise Mode configuration
Windows 10 Start and taskbar layout
Virtual Desktop Infrastructure
Security Compliance Manager
Microsoft Windows Store for Business, also known as Private Store
Assigned Access, also known as kiosk mode
Bring Your Own Device scenarios
User Experience Virtualization
Chapter 3: User Account Administration
Local Admin Password Solution
Create policies to control local accounts
Manage user sign in options
Mobile device management security settings
Windows Hello for Business
Manage options for Windows Hello for Business
Privileged Access Workstation
Chapter 4: Remote Administration Tools
Remote Server Administration Tools
PowerShell in the Enterprise
Desired State Configuration
Windows Sysinternals tools suite
Chapter 5: Device Management
Changes to GPOs in Windows 10
Enterprise/Education - only GPOs
Known issues when upgrading the central policy store
Known issues with Group Policy Preferences/GPMC
Update delivery solutions
Windows Update for Business
Windows Server Update Services
SCCM and third-party solutions
Chapter 6: Protecting Enterprise Data in BYOD Scenarios
Management responsibility
Identity and access management
Connect to work or school
Windows Store for Business
Mobile Application Management
Windows Information Protection
Document classification and encryption
Enable remote/virtual desktops - RDS/VDI
Enable virtual private networks
Publish applications via proxy
End user behavior analytics
Work Folders compared to other sync technologies
Chapter 7: Windows 10 Security
Today's security challenges
Windows Hello/Windows Hello for Business
Differences between Windows Hello and Windows Hello for Business
Virtualization-based security
Windows Defender Application Guard for Microsoft Edge
Windows Defender Exploit Guard
Device Health Attestation
Windows Defender Security Center
Local Administrator Password Solution
Group Policy client-side extension
Group Policy configuration options
Chapter 8: Windows Defender Advanced Threat Protection
Windows Defender Security Center
Plan - environment analysis
Deploy - service activation
Sign up and activate Windows Defender ATP
Detect - using the ATP portal
Protect Post-breach response
Potentially Unwanted Application
Taking responsive actions on a machine
Collecting an investigation package
Take responsive actions on a file or process
Chapter 9: Advanced Configurations
VDI infrastructure best practices
VDI configuration considerations
The Set up School PCs application
Chapter 10: RedStone 3 Changes
OneDrive – file on demand
Task Manager shows GPU usage graph
Ubuntu, openSUSE and SUSE LSE available as Linux subsystem
New features of Microsoft Edge
New Google Chrome to Microsoft Edge migration feature
Change of network profiles in GUI
Improved storage sense feature